<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>NetworkNick.net</title>
	<atom:link href="http://networknick.net/blog/?feed=rss2" rel="self" type="application/rss+xml" />
	<link>http://networknick.net/blog</link>
	<description>Events, trends, hacks, tools, and the occasional rant from a networking consultant.</description>
	<lastBuildDate>Wed, 16 Sep 2009 06:50:15 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Visit to TACC &#8211; Warning, Andy BFS content</title>
		<link>http://networknick.net/blog/?p=65</link>
		<comments>http://networknick.net/blog/?p=65#comments</comments>
		<pubDate>Wed, 16 Sep 2009 06:44:04 +0000</pubDate>
		<dc:creator>nick</dc:creator>
				<category><![CDATA[Arista]]></category>
		<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://networknick.net/blog/?p=65</guid>
		<description><![CDATA[Magnum 1 and 2 in the TACC datacenter. Amazing. Magnum = a 5-stage, 3500 port IB switch @ TACC. Cable management? &#8230;I&#8217;d call that cable execution! More details (and Andy&#8217;s math) here:
 http://blogs.sun.com/jonathan/entry/size_matters

]]></description>
			<content:encoded><![CDATA[<p>Magnum 1 and 2 in the TACC datacenter. Amazing. Magnum = a 5-stage, 3500 port IB switch @ TACC. Cable management? &#8230;I&#8217;d call that cable execution! More details (and Andy&#8217;s math) here:</p>
<p><a href="http://blogs.sun.com/jonathan/entry/size_matters" target="_blank"> http://blogs.sun.com/jonathan/entry/size_matters</a></p>
<p style="text-align: center;"><img class="alignnone" title="Magnum rear" src="http://networknick.net/nick/IMG_0103.JPG" alt="" width="600" height="480" /><img class="aligncenter" title="Magnum Front" src="http://networknick.net/nick/IMG_0105.JPG" alt="" width="600" height="480" /></p>
]]></content:encoded>
			<wfw:commentRss>http://networknick.net/blog/?feed=rss2&amp;p=65</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The rumors of my demise are greatly exaggerated&#8230;</title>
		<link>http://networknick.net/blog/?p=61</link>
		<comments>http://networknick.net/blog/?p=61#comments</comments>
		<pubDate>Wed, 10 Dec 2008 18:31:29 +0000</pubDate>
		<dc:creator>nick</dc:creator>
				<category><![CDATA[Arista]]></category>
		<category><![CDATA[General]]></category>
		<category><![CDATA[10 gigabit]]></category>
		<category><![CDATA[Arista networks]]></category>
		<category><![CDATA[ethernet]]></category>
		<category><![CDATA[ProCurve]]></category>

		<guid isPermaLink="false">http://networknick.net/blog/?p=61</guid>
		<description><![CDATA[For all of you that were wondering, I&#8217;ve left HP ProCurve for a new opportunity, Arista Networks. Arista is a 10 gigabit Ethernet provider, focusing on next generation data center interconnect. I&#8217;ll still be around to answer questions and post thoughts, even if they are about ProCurve. However, I may have more of a 10 [...]]]></description>
			<content:encoded><![CDATA[<p>For all of you that were wondering, I&#8217;ve left HP ProCurve for a new opportunity, <a title="Arista" href="http://www.aristanetworks.com/en/Index" target="_blank">Arista Networks</a>. Arista is a 10 gigabit Ethernet provider, focusing on next generation data center interconnect. I&#8217;ll still be around to answer questions and post thoughts, even if they are about ProCurve. However, I may have more of a 10 gigabit data center bent from here on in&#8230;</p>
]]></content:encoded>
			<wfw:commentRss>http://networknick.net/blog/?feed=rss2&amp;p=61</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>New products=New MIB&#8217;s. Get &#8216;em here!</title>
		<link>http://networknick.net/blog/?p=55</link>
		<comments>http://networknick.net/blog/?p=55#comments</comments>
		<pubDate>Fri, 31 Oct 2008 05:25:22 +0000</pubDate>
		<dc:creator>nick</dc:creator>
				<category><![CDATA[Links]]></category>
		<category><![CDATA[ProCurve]]></category>
		<category><![CDATA[Tech Tips]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[SNMP procurve mib management HP]]></category>

		<guid isPermaLink="false">http://networknick.net/blog/?p=55</guid>
		<description><![CDATA[For your downloading pleasure.
]]></description>
			<content:encoded><![CDATA[<p><span style="font-size: 10pt"><a href="ftp://ftp.hp.com/pub/networking/software/mibs-mar08.tar">For your downloading pleasure.</a></p>
]]></content:encoded>
			<wfw:commentRss>http://networknick.net/blog/?feed=rss2&amp;p=55</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>While we&#8217;re discussing K.13 code</title>
		<link>http://networknick.net/blog/?p=53</link>
		<comments>http://networknick.net/blog/?p=53#comments</comments>
		<pubDate>Thu, 23 Oct 2008 06:24:54 +0000</pubDate>
		<dc:creator>nick</dc:creator>
				<category><![CDATA[ProCurve]]></category>

		<guid isPermaLink="false">http://networknick.net/blog/?p=53</guid>
		<description><![CDATA[There is another often requested feature now in the code base. The &#8220;pipe&#8221;.

Strangely it isn&#8217;t documented, but you have the standard begin/include/exclude set of options.

Usage:

show run &#124; begin vlan 
]]></description>
			<content:encoded><![CDATA[<p><span style="font-size: 10pt">There is another often requested feature now in the code base. The &#8220;pipe&#8221;.<br />
<span style="font-size: 10pt"><br />
Strangely it isn&#8217;t documented, but you have the standard begin/include/exclude set of options.<br />
<span style="font-size: 10pt"><br />
Usage:<br />
<span style="font-size: 10pt"><br />
show run | begin vlan </p>
]]></content:encoded>
			<wfw:commentRss>http://networknick.net/blog/?feed=rss2&amp;p=53</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The self configuring switch&#8230;</title>
		<link>http://networknick.net/blog/?p=46</link>
		<comments>http://networknick.net/blog/?p=46#comments</comments>
		<pubDate>Thu, 23 Oct 2008 06:17:05 +0000</pubDate>
		<dc:creator>nick</dc:creator>
				<category><![CDATA[ProCurve]]></category>
		<category><![CDATA[Tech Tips]]></category>
		<category><![CDATA[auto configure procurve cli configure]]></category>

		<guid isPermaLink="false">http://networknick.net/blog/?p=46</guid>
		<description><![CDATA[So here&#8217;s one for you&#8230;as of the K.13.X release of code, you now can use DHCP options 66 and 67 to specify a TFTP server and filename for configuration at boot. The switch listens by default for these options. Combine that with the &#8220;auto-tftp&#8221; command, and voila!&#8230;You have a switch that is configured and standardized [...]]]></description>
			<content:encoded><![CDATA[<p><span style="font-size: 10pt">So here&#8217;s one for you&#8230;as of the K.13.X release of code, you now can use DHCP options 66 and 67 to specify a TFTP server and filename for configuration at boot. The switch listens by default for these options. Combine that with the &#8220;auto-tftp&#8221; command, and voila!&#8230;You have a switch that is configured and standardized with your version of software.</p>
<p><span style="font-size: 10pt">Not bad at all..</p>
]]></content:encoded>
			<wfw:commentRss>http://networknick.net/blog/?feed=rss2&amp;p=46</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>I got p0wned!</title>
		<link>http://networknick.net/blog/?p=45</link>
		<comments>http://networknick.net/blog/?p=45#comments</comments>
		<pubDate>Wed, 16 Apr 2008 05:01:20 +0000</pubDate>
		<dc:creator>nick</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://networknick.net/blog/?p=45</guid>
		<description><![CDATA[So it looks like I was running an older version of Wordpress for my blog and fell victim to this vulnerability. NOT PRETTY. Cleaned it all up and upgraded to 2.5, but man, what a pain. Either way, hope no one visited and got a virus from the hidden frame code. I&#8217;ll be more diligent to [...]]]></description>
			<content:encoded><![CDATA[<p><span style="font-size: 10pt">So it looks like I was running an older version of Wordpress for my blog and fell victim to <a title="bummer...dude..." href="http://wordpress.org/support/topic/134928">this</a> vulnerability. NOT PRETTY. Cleaned it all up and upgraded to 2.5, but man, what a pain. Either way, hope no one visited and got a virus from the hidden frame code. I&#8217;ll be more diligent to upgrade/watch for security holes in the future&#8230;</span></p>
]]></content:encoded>
			<wfw:commentRss>http://networknick.net/blog/?feed=rss2&amp;p=45</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The 4 byte mystery&#8230;</title>
		<link>http://networknick.net/blog/?p=44</link>
		<comments>http://networknick.net/blog/?p=44#comments</comments>
		<pubDate>Fri, 28 Mar 2008 15:33:01 +0000</pubDate>
		<dc:creator>nick</dc:creator>
				<category><![CDATA[ProCurve]]></category>

		<guid isPermaLink="false">http://networknick.net/blog/2008/03/28/the-4-byte-mystery/</guid>
		<description><![CDATA[So I was at a client site this week troubleshooting a strange traffic mirroring issue. It went something like this:
I thought the ProCurve 3500 mirror port was dropping specific inbound oversized SIP packets on the outbound mirror port. The actual traffic went through, but the mirror port only saw the continuation frame, not the initial 1500 [...]]]></description>
			<content:encoded><![CDATA[<p><span style="font-size: 10pt">So I was at a client site this week troubleshooting a strange traffic mirroring issue. It went something like this:<br />
I thought the ProCurve 3500 mirror port was dropping specific inbound oversized SIP packets on the outbound mirror port. The actual traffic went through, but the mirror port only saw the continuation frame, not the initial 1500 bytes frame. This was a standard 1 port&gt;1port mirror configuration, bi-directional, no filtering. So we dug in to find out why the mirror port wasn&#8217;t forwarding that first frame. For a while we were stumped, but then I did a netstat -e on the sniffer (Windows based) and whatdya know, it&#8217;s got 63,000 unknown frames&#8230;! So here is what happend:</span></p>
<p><span style="font-size: 10pt">When you mirror an interface on the ProCurve switch, even locally, any traffic sent outbound on the monitored port has a VLAN tag appended for the VLAN it is part of, even when you are monitoring an untagged port. When you are sniffing traffic with a non 802.1q compliant NIC, and the packet size exceeds 1514, (you get fragmentation obviously). HOWEVER, because the total packet size is 1514+4 bytes for the VLAN tag outbound, the sniffer NIC drops it completely as it is oversized. This was causing the sniffer to miss the first packet<span> </span>(total size~1800 bytes) and just see the second fragment(~300 bytes). Once we connected a 802.1q compliant NIC to the system, we saw all packets.</span><span style="font-size: 10pt">Moral of the story: Use a .1q compliant NIC if you what to see all bidirectional traffic on a ProCurve mirror port. If you don&#8217;t have a .1q compliant NIC, make sure to enable the .1p setting in the driver, this will allow it to recieve the oversized packet (although it won&#8217;t interperet the VLAN tag).</span></p>
<p><span style="font-size: 10pt"><br />
I speaking with one of the developers, the intent of appending the tag was to allow an IDS system to delineate traffic from multiple networks on a single upling/mirror session, but this obviously breaks some expected behaviors elsewhere. ProCurve is going to be releasing an enhancement that allows you to disable the VLAN tag on the mirror session, but until them, make sure your NIC can take the tag!</span></p>
]]></content:encoded>
			<wfw:commentRss>http://networknick.net/blog/?feed=rss2&amp;p=44</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Ifindex what?</title>
		<link>http://networknick.net/blog/?p=43</link>
		<comments>http://networknick.net/blog/?p=43#comments</comments>
		<pubDate>Thu, 31 Jan 2008 20:33:40 +0000</pubDate>
		<dc:creator>nick</dc:creator>
				<category><![CDATA[ProCurve]]></category>

		<guid isPermaLink="false">http://networknick.net/blog/2008/01/31/ifindex-what/</guid>
		<description><![CDATA[When working with ProCurve products and SNMP, we do a lot with ifIndex, standardized in the RFC 2863 IF-MIB. Of course, the physical/logical correlation of the ProCurve interfaces with the MIB ifindex entries don&#8217;t line up, ie, port A1=ifindex 1, but port B1=ifindex 25. Also, VLAN&#8217;s and loopbacks get their own entries, and those aren&#8217;t [...]]]></description>
			<content:encoded><![CDATA[<p>When working with ProCurve products and SNMP, we do a lot with ifIndex, standardized in the RFC 2863 IF-MIB. Of course, the physical/logical correlation of the ProCurve interfaces with the MIB ifindex entries don&#8217;t line up, ie, port A1=ifindex 1, but port B1=ifindex 25. Also, VLAN&#8217;s and loopbacks get their own entries, and those aren&#8217;t static. The best way to find out what the ifindex entry to port/VLAN map is to do a &#8220;walkmib ifdescr&#8221; from an enable prompt. I will show you every interface/VLAN/lo interface and it&#8217;s &#8220;name&#8221; in ProCurveese.</p>
]]></content:encoded>
			<wfw:commentRss>http://networknick.net/blog/?feed=rss2&amp;p=43</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Gotcha! Reserved Multicast is more than 224.0.0.X</title>
		<link>http://networknick.net/blog/?p=42</link>
		<comments>http://networknick.net/blog/?p=42#comments</comments>
		<pubDate>Thu, 11 Oct 2007 15:54:34 +0000</pubDate>
		<dc:creator>nick</dc:creator>
				<category><![CDATA[ProCurve]]></category>
		<category><![CDATA[Tech Tips]]></category>

		<guid isPermaLink="false">http://networknick.net/blog/2007/10/11/gotcha-reserved-multicast-is-more-than-22400x/</guid>
		<description><![CDATA[Pretty much everyone knows that reserved multicast addresses are always flooded on ethernet networks. IGMP does not program filters for packets addressed to the &#8220;Reserved Multicast Address&#8221; range. There are Reserved Addresses at Layer 3 (i.e., 224.0.0.1 &#8211; 224.0.0.255) that at layer two are indistinguishable from a broader range of MAC Addresses (because the Multicast [...]]]></description>
			<content:encoded><![CDATA[<p><span style="font-size: 10pt">Pretty much everyone knows that reserved multicast addresses are always flooded on ethernet networks. IGMP does not program filters for packets addressed to the &#8220;Reserved Multicast Address&#8221; range. There are Reserved Addresses at Layer 3 (i.e., 224.0.0.1 &#8211; 224.0.0.255) that at layer two are indistinguishable from a broader range of MAC Addresses (because the Multicast Mac Address always begins with 01005E-XXXXXX, which covers the leading byte plus one more bit of the IP Address). No filters are programmed for these, nor should they be as this will break other multicast protocols.<br />
<span style="font-size: 10pt"><br />
So the story here is, L3 reserved addresses are the 224.0.0.X, but L2 really has more reservations because of the way the IP maps to the MAC.<br />
<span style="font-size: 10pt"><br />
That being said, the following addresses are always flooded (i.e., never filtered):<br />
<span style="font-size: 10pt"><br />
224.0.0.XX      224.128.0.XX<br />
225.0.0.XX      225.128.0.XX<br />
226.0.0.XX      226.128.0.XX<br />
227.0.0.XX      227.128.0.XX<br />
228.0.0.XX      228.128.0.XX<br />
229.0.0.XX      229.128.0.XX<br />
230.0.0.XX      230.128.0.XX<br />
231.0.0.XX      231.128.0.XX<br />
232.0.0.XX      232.128.0.XX<br />
233.0.0.XX      233.128.0.XX<br />
234.0.0.XX      234.128.0.XX<br />
235.0.0.XX      235.128.0.XX<br />
236.0.0.XX      236.128.0.XX<br />
237.0.0.XX      237.128.0.XX<br />
238.0.0.XX      238.128.0.XX<br />
239.0.0.XX      239.128.0.XX<br />
<span style="font-size: 10pt"><br />
Good to keep in mind when choosing that arbitrary address for your multicast application. Make sure that it doesn&#8217;t end up in the reserved L2 space!</p>
]]></content:encoded>
			<wfw:commentRss>http://networknick.net/blog/?feed=rss2&amp;p=42</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cisco Interop Documentation</title>
		<link>http://networknick.net/blog/?p=41</link>
		<comments>http://networknick.net/blog/?p=41#comments</comments>
		<pubDate>Tue, 02 Oct 2007 03:20:30 +0000</pubDate>
		<dc:creator>nick</dc:creator>
				<category><![CDATA[ProCurve]]></category>
		<category><![CDATA[Tech Tips]]></category>

		<guid isPermaLink="false">http://networknick.net/blog/2007/10/01/cisco-interop-documentation/</guid>
		<description><![CDATA[I&#8217;ve had a lot of partners and customers lately asking me for a Cisco interop document from ProCurve. These aren&#8217;t officially sanctioned, but should do the trick.

Here is the link to a zip file containing the following:

Cisco interop powerpoint: This was put together by one of the European technical consultants, and discusses things like migration [...]]]></description>
			<content:encoded><![CDATA[<p><span style="font-size: 10pt">I&#8217;ve had a lot of partners and customers lately asking me for a Cisco interop document from ProCurve. These aren&#8217;t officially sanctioned, but should do the trick.<br />
<span style="font-size: 10pt"><br />
<a href="http://networknick.net/ProCurve/ciscointerop.zip" title="Cisco interop goodness!" target="_blank">Here is the link to a zip file</a> containing the following:<br />
<span style="font-size: 10pt"><br />
Cisco interop powerpoint: This was put together by one of the European technical consultants, and discusses things like migration strategies and command comparisons.<br />
<span style="font-size: 10pt"><br />
Cisco interop PDF: The semi formal guide for L2-L3 interop with Cisco devices and proprietary protocols.<br />
<span style="font-size: 10pt"><br />
Spanning tree notes:<span style="font-size: 10pt"> MSTP and RSTP/PVST interop notes. Maximize your STP!</span></span></span></span></span></span></p>
]]></content:encoded>
			<wfw:commentRss>http://networknick.net/blog/?feed=rss2&amp;p=41</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>
